The NCSC just urged enterprises to ditch Windows 10 – here’s what you need to know
The UK cyber agency says those that haven’t migrated to Windows 11 should do so immediately
The UK's National Cyber Security Center (NCSC) has urged organizations to upgrade to Windows 11 before the end of support deadline for Windows 10 hits in October.
In a blog post, the cybersecurity body pointed out there are significant security risks for those who do not choose to upgrade.
Beyond the difficulties linked to being out of a dedicated support period, out-of-date operating systems are prime targets for cyber criminals – and the NCSC said the risks simply aren’t worth it.
30% off Keeper Security's Business Starter and Business plans
Keeper Security is trusted and valued by thousands of businesses and millions of employees. Why not join them and protect your most important assets while taking advantage of this special offer?
Take the IE 6-11 vulnerability from the end of support for Windows XP as an example.
Organizations have until October 2025 to update their devices and hardware before Windows 10 reaches end-of-life status. Despite Windows 11 being almost four years old, many have still not made the switch.
“While Windows 10 was released more than a decade ago, it is still used widely by enterprises and not upgrading is akin to incurring a debt at a high interest rate – with the threat of forced repayment at a future date,” NCSC chief technical officer, Ollie Whitehouse, warned.
“The NCSC implores any organisation that has not already migrated to a more modern system to do so to help address security vulnerabilities in your devices and ensure overall cyber resilience. This is essential as demonstrated by the requirement to maintain supported software in Cyber Essentials.”
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
What’s holding up the shift to Windows 11?
One reason for companies holding on to Windows 11 could be the necessary hardware requirements.
Requirements such as TPM 2.0, UEFI, and support for Secure Boot may mean upgrading to more modern laptops, which might be a cost headache in the short term.
However, the cost of a cyber incident might be far worse in the long run.
As part of its guidance, the NCSC also released updated configuration packs for Microsoft Windows, with selected group settings to make it easier to deploy.
The requirements have led to suggestions that it could lead to a global torrent of e-waste, with millions of devices scrapped.
Research from Canalys suggested that up to 240 million PCs around the world could be terminated as a result of the shift to Windows 11.
Make sure to follow ITPro on Google News to keep tabs on all our latest news, analysis, and reviews.
MORE FROM ITPRO
- NCSC expert urges businesses to follow geopolitics as defensive strategy
- The NCSC wants developers to get serious on software security
- What you need to know about the new NCSC ransomware guidance
Bobby Hellard is ITPro's Reviews Editor and has worked on CloudPro and ChannelPro since 2018. In his time at ITPro, Bobby has covered stories for all the major technology companies, such as Apple, Microsoft, Amazon and Facebook, and regularly attends industry-leading events such as AWS Re:Invent and Google Cloud Next.
Bobby mainly covers hardware reviews, but you will also recognize him as the face of many of our video reviews of laptops and smartphones.
-
Alteryx names former Salesforce, Oracle strategist as new global technology alliances leadNews The former Salesforce and Oracle leader will spearhead Alteryx’s partner strategy as the vendor targets deeper ecosystem collaboration
-
Microsoft launches Fara-7B, a new 'agentic' small language model that lives on your PCNews The new Fara-7B model is designed to takeover your mouse and keyboard
-
Windows 10 end of life has passed – here's your business guide to Windows 11In-depth As Windows 10's mainstream support ends, it's time for businesses who have yet to upgrade to take a second look at Windows 11
-
AI-generated code is now the cause of one-in-five breaches – but developers and security leaders alike are convinced the technology will come good eventuallyNews AI coding tools now write 24% of production code globally, but it's risky and causing issues for developers and security practitioners alike.
-
Microsoft issues fix for Windows 11 update that bricked mouse and keyboard controls in recovery environment – here's what you need to knowNews Yet another Windows 11 update has caused chaos for users
-
Windows 10 end of life could create a major e-waste problemNews The study marks the latest Windows 10 end of life e-waste warning
-
US Senator calls for Microsoft FTC probe over ‘gross cybersecurity negligence’ – Ron Wyden claims the tech giant has provided ‘dangerous, insecure software’ to the US governmentNews Ron Wyden, a Democratic senator from Oregon, has written to the chair of the FTC calling for an investigation into Microsoft's cyber practices.
-
Windows 10 extended support costs could top $7 billionNews Enterprises sticking with Windows 10 after the October deadline face huge costs
-
A senior Microsoft exec says future Windows versions will offer more interactive, ‘multimodal’ experiencesNews With speculation over a Windows 12 reveal mounting, a senior company figure claims the new operating system will mark a step change for users
-
Microsoft’s botched August updates wiped SSDs, now it’s breaking PC resets and recoveries on WindowsNews An out-of-band patch has been issued by Microsoft to fix a flaw introduced by its August update

